Unrated severityNVD Advisory· Published May 11, 2000· Updated Apr 16, 2026
CVE-2000-0439
CVE-2000-0439
Description
Internet Explorer 4.0 and 5.0 allows a malicious web site to obtain client cookies from another domain by including that domain name and escaped characters in a URL, aka the "Unauthorized Cookie Access" vulnerability.
Affected products
6cpe:2.3:a:microsoft:internet_explorer:3.0:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:microsoft:internet_explorer:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:3.2:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:4.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:4.1:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6News mentions
0No linked articles in our index yet.